Magic PS 1.5 Dropper

Released 20 years, 10 months ago. January 2004

Copyright © MegaSecurity


Informations
From Iran
Family Magic PS
Category Information Stealer
Version Magic PS 1.5 Dropper
Released Date Jan 2004, 20 years, 10 months ago.
Language Delphi
Additional Information
Client:
size: 62,355 bytes

dropped files:
c:\WINDOWS\svchost .exe            Size: 12,668 bytes    (Trojan-PSW.Win32.Sagic.15)
c:\WINDOWS\system32\mmtask1.exe    Size: 12,668 bytes    (Trojan-PSW.Win32.Sagic.15)
c:\WINDOWS\system32\MsAgent32.exe  Size: 12,668 bytes    (Trojan-PSW.Win32.Sagic.15)

startup:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{5M8A6G00-3I18-11C0-821H-444200140P0S} "StubPath"
data: C:\WINDOWS\System32\MsAgent32.exe 


tested on Windows XP
May 04, 2005

If you recognize any personal information on this page and wish to have it removed or redacted, please contact us at jplesueur@phrozen.io. We are committed to protecting your privacy in accordance with GDPR regulations.